ASUS ROG Armoury Crate Lite before 4.2.10 allows local users to gain privileges by placing a Trojan horse file in the publicly writable %PROGRAMDATA%\ASUS\GamingCenterLib directory.
References
Link | Resource |
---|---|
https://aptw.tf/2021/09/24/armoury-crate-privesc.html | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-09-26 23:15
Updated : 2021-10-01 13:08
NVD link : CVE-2021-40981
Mitre link : CVE-2021-40981
JSON object : View
CWE
CWE-427
Uncontrolled Search Path Element
Products Affected
asus
- armoury_crate_lite_service